curl quit, HackerOne paused, Elastic pays $2 a report: the bug-bounty economy after AI slop
This story is from 2026-09-27. It is preserved in the archive; the latest stories are on the live feed.
In December 2024 Seth Larson, the Python Software Foundation's security developer-in-residence, described "a new era of slop security reports for open source": vulnerability reports generated by language models, referencing code that does not exist, flagging deliberate design choices as bugs. One r…
Read the full story at DEV Community — AI ↗
Timeline · 1 report
- 2026-09-27 10:55 · DEV Community — AI
curl quit, HackerOne paused, Elastic pays $2 a report: the bug-bounty economy after AI slop